Commit Graph

314 Commits

Author SHA1 Message Date
Alexander Bokovoy
07faf2d8b8 Rebuild against samba 4.15.0 RC1
Also depend on sssd-winbind-idmap for freeipa-server-trust-ad

Resolves: rhbz#1970168

Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-07-16 16:33:49 +03:00
Alexander Bokovoy
82287448af remove references to custodia as it is merged in FreeIPA
Resolves: rhbz#1978632

Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-07-02 14:15:21 +03:00
François Cami
fc48683f41 Upstream release FreeIPA 4.9.3
Signed-off-by: François Cami <fcami@redhat.com>
2021-06-29 19:38:50 +02:00
Alexander Bokovoy
9eee394ae1 Rebuild for Python 3.10, second part
A rebuild is needed for picking up a new dependency for python3-wsgi

Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-06-14 09:22:42 +03:00
Python Maint
4cd3eaa0f6 Rebuilt for Python 3.10 2021-06-04 20:04:44 +02:00
Alexander Bokovoy
e95becb243 Add missing patch
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-06-04 16:03:45 +03:00
Alexander Bokovoy
f6e7b19cc5 FreeIPA 4.9.4
Fix missing creds breakage in 'ipa' tool post-release

Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-06-04 15:50:17 +03:00
Alexander Bokovoy
bedd4a4587 Part 2 of the replication plugin rename fix
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-06-01 12:34:37 +03:00
Alexander Bokovoy
c999c986a6 Handle rename of replication plugin in 389-ds
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-06-01 10:55:29 +03:00
Vit Mojzis
299287cb53 tests: Add decentralized SELinux policy test
- Test for unsound/dangerous SELinux policy practices
- Perform static policy code check using SELint

For more details and debugging tips see
https://fedoraproject.org/wiki/SELinux/IndependentPolicy#Testing
2021-05-11 17:33:47 +02:00
Alexander Bokovoy
df0fbfd556 Handle failures to resolve non-existing reverse zones during deployment with systemd-resolved
Resolves: rhbz#1948034

Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-04-12 22:35:47 +03:00
Alexander Bokovoy
4b3503176e Upstream release FreeIPA 4.9.3
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-03-31 09:49:32 +03:00
Rob Crittenden
506b58c190 Change the method rpminspect uses to verify spec/package naming
Using suffix instead of full so we can ignore the free part.
2021-03-23 14:46:38 -04:00
Alexander Bokovoy
66db9529f8 Rebuild against 389-ds and PKI to fix https://github.com/389ds/389-ds-base/issues/4609
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-02-26 22:21:20 +02:00
Alexander Bokovoy
71a36c6ab9 Only use python-platform on RHEL 8
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-02-23 17:41:48 +02:00
Troy Dawson
4de77e9638 platform-python only on RHEL8 2021-02-19 21:28:16 +00:00
Alexander Bokovoy
f25a4e55eb Fix ipatests dependency to python3-pexpect
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-02-15 21:34:42 +02:00
Alexander Bokovoy
9c43e47a35 Update to FreeIPA 4.9.2
New upstream release.

Add RHEL/Fedora ELN-only branding patch.

Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2021-02-15 21:02:25 +02:00
Alexander Bokovoy
e98c2f2a47 Remove unused patches 2021-02-01 09:45:35 +02:00
Alexander Bokovoy
179e81bf0a FreeIPA 4.9.1 release 2021-01-27 15:38:23 +02:00
Fedora Release Engineering
0b71cc63e9 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2021-01-26 05:54:38 +00:00
Rob Crittenden
c4a47619fb Set client keytab location for 389ds
Resolves: RHBZ#1918075
2021-01-20 17:48:10 -05:00
Alexander Bokovoy
9ed0331cde FreeIPA 4.9.0 release
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2020-12-23 17:07:21 +02:00
Alexander Bokovoy
d10972a2bf Test a fix for rhbz#1902811 2020-12-16 08:11:09 +02:00
Alexander Bokovoy
d1d2d3bc50 Remove outdated patch reference for RHEL build 2020-12-16 07:51:20 +02:00
Alexander Bokovoy
dcdddd25b4 FreeIPA 4.9.0 release candidate 3 2020-12-10 18:41:26 +02:00
Alexander Bokovoy
b91bf7ae0f Apply 4.9.0rc2 fixes from upstream
Allow mod_auth_gssapi to create and access ccaches in /run/ipa/ccaches
Fixes: https://pagure.io/freeipa/issue/8613

upgrade: provide DOMAIN to the server upgrade dictionary
Fixes: https://pagure.io/freeipa/issue/8615
2020-12-09 20:07:18 +02:00
Alexander Bokovoy
3ad697a03a Correct selinux requirement
freeipa-selinux subpackage is used by both client and server but
requires freeipa-server subpackage unconditionally. This needs to be
removed.

Originally, upstream spec file did not have this bug. It was brought
in with unification of the specfiles.

Resolves: rhbz#1883005

Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2020-12-04 22:21:50 +02:00
Alexander Bokovoy
ae7e82eec2 Update to FreeIPA 4.9.0 release candidate 2 2020-12-04 13:53:27 +02:00
Alexander Bokovoy
41b946dfeb Remove old freeipa-server requirement in selinux subpackage 2020-11-19 20:53:07 +02:00
Alexander Bokovoy
d0324d20d6 Update spec file 2020-11-19 20:45:31 +02:00
Alexander Bokovoy
5245a181b9 Fix client-only build
Upstream PR: https://github.com/freeipa/freeipa/pull/5273.patch
2020-11-18 13:05:01 +02:00
Alexander Bokovoy
792b04177b Remove obsolete patches 2020-11-18 12:08:02 +02:00
Alexander Bokovoy
a5238c00f7 Fix build directory location for release candidates 2020-11-18 12:00:47 +02:00
Alexander Bokovoy
0d298a885e FreeIPA 4.9.0 release candidate 1
- Update to new upstream release
- Unify most of Fedora/RHEL/Upstream spec files
2020-11-18 11:56:37 +02:00
Adam Williamson
f5ffc4abf3 Backport #5212 for deployment failures with 389-ds-base 1.4.4.6+ 2020-10-28 15:16:06 -07:00
Alexander Bokovoy
deafacd653 Handle better upgrade of sshd_config
Fixes: rhbz#1887928
2020-10-13 18:54:47 +03:00
Alexander Bokovoy
45879303cf Properly handle upgrade when systemd-resolved is enabled 2020-09-29 14:04:30 +03:00
Alexander Bokovoy
ede0ac6cb6 Fix permissions of systemd-resolved configuration file
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2020-09-28 15:38:44 +03:00
Alexander Bokovoy
649963736f Make selinux subpackage dependency in -common versioned 2020-09-27 18:11:56 +03:00
Alexander Bokovoy
cc0d18ca0a Fix dependency between freeipa-selinux and freeipa-common
We need to make sure freeipa-selinux subpackage pulls the same NVR set of
freeipa-* packages. We can achieve this with freeipa-common dependency.
Using freeipa-server was wrong as it pulled server packages into a
client-only deployment.

Rsolves: rhbz#1883005

Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2020-09-27 18:05:53 +03:00
Alexander Bokovoy
dd627d4562 Support upgrade F32 to F33 with systemd-resolved 2020-09-26 16:41:34 +03:00
Alexander Bokovoy
90249d2730 Update changelog 2020-09-26 12:25:51 +03:00
Alexander Bokovoy
3c2acac7db Update to FreeIPA 4.8.10 2020-09-26 12:23:38 +03:00
Alexander Bokovoy
be9ba85ab6 Support older installations on upgrade 2020-08-21 15:34:04 +03:00
François Cami
8ac40118cb FreeIPA 4.8.7 upstream release 2020-08-20 19:24:07 +02:00
Alexander Bokovoy
9255ad4636 Make use of unshare+chroot in ipa-extdom-extop unittests to work against glibc 2.32 2020-08-03 12:36:19 +03:00
Fedora Release Engineering
3c3db56f45 - Second attempt - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2020-08-01 01:04:16 +00:00
Merlin Mathesius
05cc0230f3 Conditional fixes for ELN to set krb5-kdb version appropriately
Signed-off-by: Merlin Mathesius <mmathesi@redhat.com>
2020-07-30 08:23:26 -05:00
Fedora Release Engineering
043318b878 - Rebuilt for https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
Signed-off-by: Fedora Release Engineering <releng@fedoraproject.org>
2020-07-27 17:48:52 +00:00